Malicious
Malicious

31f4986728b8c317d340f3d878a84f01

PE Executable
MD5: 31f4986728b8c317d340f3d878a84f01
Size: 6.91 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 31f4986728b8c317d340f3d878a84f01
Sha1 aa8e1b114a17eb75221011ceae5c3293ba3dbcab
Sha256 d4df270ea5a146713de213817b88ba95e575c2eea4c1e66f4c070cacc6ae1272
Sha384 64110760ab5a1cf56f6ae65767a706d1a2d17c0ef435158a0a70a358e648de6650d75e290778bc962e453d93e8e69cc1
Sha512 4fec0dad5e74b3c8f47335632ab99ef3955f48c516e4ba5759237b76f82fb6438157d079cfddecb0d10313e22f445a32a8f1d8b7a8acad97fb70d4b1d863eccb
SSDeep 49152:rj4JCr/RdwI/b9VaNqc1aiHRYGXcQLEPXgXIwr8q+MmLrRpyOWmV+CWt:rbpiHRXsiEYXJiLrR4pc6
TLSH C3667C07BD6105E4C4AA8638C87B9343B779B88D4B3277D32E50BA382F797C499B6714
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_20f0eb3b.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055>bin
Shape pe:exe>bin
malicious 2 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x648800 size 8104 bytes
[Authenticode]_20f0eb3b.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙